Enable job alerts via email!

Cyber Security Lead

Ant International

London

On-site

USD 70,000 - 100,000

Full time

4 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Ant International seeks a GRC Lead responsible for regulatory compliance and third-party risk management. The ideal candidate has over 5 years of experience in governance, risk, and compliance within the financial services sector. You will design compliance frameworks and play a key role in enhancing our security posture against European regulations. If you're driven by strategic thinking and possess technical expertise, apply now to join our mission in propelling global commerce through innovation.

Qualifications

  • 5+ years experience in GRC roles, preferably in financial services.
  • Good understanding of GDPR, PCI DSS, and relevant regulations.
  • Hands-on experience with ISO 27001 implementation.

Responsibilities

  • Support compliance with GDPR and DORA regulations.
  • Implement third-party risk management programs.
  • Participate in internal/external audits focusing on compliance.

Skills

Risk Management
Compliance
Identity and Access Management
Technical Security Controls
Audit Management

Education

Certifications: CRISC, CISSP, CISM, or CISA
Bachelor's Degree in Information Technology or related field

Tools

ISO 27001
Third-party Risk Tools

Job description

Ant International powers the future of global commerce with digital innovation for everyone and every business to thrive. In close collaboration with partners, we support merchants of all sizes worldwide to realize their growth aspirations through a comprehensive range of tech-driven digital payment and financial services solutions.

Ant International strives to become the most trusted digital services connector to achieve sustainable growth of global commerce.

With a focus on Travel, Trade, Technology, and Talent, Ant International is committed to enhancing the digital mindset and capacities of businesses worldwide. Through fostering collaborative efforts with partners, we are driving responsible innovation and increase market accessibility for global SMEs.

We do so across our 4 key businesses: Alipay+, Antom, WorldFirst and ANEXT Bank.

Role Overview:

As a GRC Lead, you will ensure alignment with European regulations (e.g., GDPR, DORA, PSD2 SCA, CSSF) and global standards (PCI DSS, SWIFT CSP). This role requires technical knowledge, strategic thinking, and expertise in managing third-party risk, outsourcing compliance, and identity governance to safeguard operational resilience.

What you will be doing:

Regulatory & Technical Compliance:

  • Support compliance with GDPR and complementary regulations like DORA (Digital Operational Resilience Act), ensuring alignment in areas such as incident reporting and data protection.
  • Translate requirements from PSD2 SCA, PCI DSS, and SWIFT CSP into technical security controls.
  • Maintain IT security governance frameworks (ISO 27001, NIST CSF, CIS Controls).
  • Manage and maintain Security Policies and procedures

Third-Party Risk & Outsourcing Management:

  • Design and implement third-party risk management programs to assess vendors, cloud providers, and outsourced services.
  • Ensure compliance with DORA’s outsourcing requirements, including due diligence, contract oversight, and continuity planning.

Audit & Assurance:

  • Participate in internal/external audits (ISO 27001, SOC 2) and regulatory examinations, focusing on third-party and outsourcing compliance.
  • Remediate gaps in processes or documentation.
  • Maintain the enterprise risk register, prioritizing risks tied to third-party dependencies, outsourcing, and ICT disruptions.
  • Quantify risks using methodologies.

Technical Compliance & Security:

  • Advise on vulnerability management, endpoint security (EDR/XDR), and cloud compliance.
  • Good understanding on IAM (Identity and Access Management) strategies, including role-based access control (RBAC) and privileged access management (PAM).
  • Conduct periodic user access reviews to ensure compliance with least privilege principles and regulatory requirements.
  • Security awareness management experience.

What we are looking for:

  • Experience: 5+ years in GRC roles; financial services or banking experience is a strong plus.
  • Understanding of GDPR, DORA, PCI DSS, and outsourcing/third-party risk requirements.
  • Hands-on experience with ISO 27001 implementation and third-party risk tools.
  • Proficiency in IAM (Identity and Access Management) solutions and conducting user access reviews.
  • Familiarity with cloud Technology and IT infrastructure.
  • Strong knowledge of NIST frameworks (CSF, 800-53) and CIS Controls.
  • Certifications: CRISC, CISSP, CISM, or CISA preferred (equivalent experience considered).
Seniority level
  • Seniority level
    Mid-Senior level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology

Referrals increase your chances of interviewing at Ant International by 2x

Get notified about new Cyber Security Specialist jobs in London Area, United Kingdom.

London, England, United Kingdom 3 weeks ago

London, England, United Kingdom 1 week ago

Security Analyst, Security Operations and Incident Response

London, England, United Kingdom 1 week ago

London, England, United Kingdom 1 month ago

London, England, United Kingdom 3 weeks ago

London, England, United Kingdom 1 day ago

Graduate Cybersecurity Analyst (Visa Sponsorship Available)
Product Security Engineer (University Grad)

London, England, United Kingdom 2 weeks ago

London, England, United Kingdom 2 weeks ago

London, England, United Kingdom 3 days ago

Uxbridge, England, United Kingdom 1 week ago

London, England, United Kingdom 1 week ago

London, England, United Kingdom 1 day ago

Greater London, England, United Kingdom 2 months ago

London Area, United Kingdom $70,000.00-$100,000.00 2 weeks ago

London, England, United Kingdom 1 week ago

London, England, United Kingdom 6 days ago

London, England, United Kingdom 3 weeks ago

London, England, United Kingdom 2 months ago

Greater London, England, United Kingdom 4 days ago

London, England, United Kingdom 1 month ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Head of Cyber Security Operations

QA Ltd

London

Remote

GBP 80,000 - 130,000

5 days ago
Be an early applicant

Principal Cyber Security Consultant - Critical National Infrastructure (CNI)

Qodea Limited

London

Remote

GBP 70,000 - 90,000

3 days ago
Be an early applicant

Cyber Security Lead

E1 EDF Trading Ltd

London

Hybrid

GBP 70,000 - 90,000

3 days ago
Be an early applicant

Cyber Security Specialist

Anson McCade

London

Hybrid

USD 70,000 - 100,000

5 days ago
Be an early applicant

Cyber Security Incident Response Consultant

JR United Kingdom

Hounslow

Remote

GBP 60,000 - 80,000

10 days ago

Cyber Security Lead

antfinancial

London

On-site

GBP 70,000 - 100,000

3 days ago
Be an early applicant

Cyber Security Lead

Ant Group

London

On-site

GBP 80,000 - 120,000

3 days ago
Be an early applicant

Cyber Security Lead

Eames Consulting

London

On-site

GBP 50,000 - 85,000

3 days ago
Be an early applicant

Cyber Security Incident Response Consultant

JR United Kingdom

Colchester

Remote

GBP 55,000 - 95,000

10 days ago